CVE-2005-2407: Medium severity opera Opera Browser vulnerability
Published Jul 28, 2005
·Updated
A design error in Opera 8.01 and earlier allows user-assisted attackers to execute arbitrary code by overlaying a malicious new window above a file download dialog box, then tricking the user into double-clicking on the "Run" button, aka "link hijacking".
Affected Software
1 affected component
opera Opera Browser<=8.01
Remediation
Patch Available
Patch Available
Event History
Jul 28, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2407?
The severity of CVE-2005-2407 is considered medium due to its potential for arbitrary code execution.
2
How do I fix CVE-2005-2407?
To fix CVE-2005-2407, upgrade to a version of Opera newer than 8.01.
3
What is the primary risk associated with CVE-2005-2407?
The primary risk associated with CVE-2005-2407 is the possibility of user-assisted code execution by attackers.
4
Which versions of Opera are affected by CVE-2005-2407?
Opera versions 8.01 and earlier are affected by CVE-2005-2407.
5
How does CVE-2005-2407 exploit the user interface?
CVE-2005-2407 exploits the user interface by overlaying a malicious window over a legitimate file download dialog to deceive users.